EPHAPAX
Why a key that signs once, and why now

Launch coins signed once for all.

Every coin is signed by a one-time, hash-based key derived from your wallet. Nothing but SHA-256 stands behind it, so there is no curve for a quantum computer to break, and a stranger can check any signature holding the root, the message, and nothing else of yours.

Launching works. The launch page calls pump.fun’s create_v2 on mainnet and spends real SOL. This project has no coin of its own yet. What is not deployed is the on-chain verifier: the attestation is checkable by anyone holding the algorithm, and not yet by a Solana program.

… 62 more chains
msg·
leaf··································
root 0/8··································
[ .. ]signing message
scheme
WOTS w=16
SHA-256, and nothing else
chains
67
64 message + 3 checksum
keys / identity
256
Merkle h=8, and never more
attestation
2,436 B
over Solana's 1232 B limit

Coins launched here

Quantum means a one-time key signed the record. Standard means nothing did.

reading /api/launches…

What a verifier actually does

  1. 01 signσ[i] = H^d[i](sk[i])each of the 67 chains is walked d[i] steps, where d is the digest in 4-bit pieces plus 3 checksum pieces
  2. 02 recoverpk[i] = H^(15−d[i])(σ[i])the verifier walks the rest of the way and sees where it lands, holding no secret at any point
  3. 03 commitleaf = H(pk[0] ‖ … ‖ pk[66])the one-time key is squeezed into a single leaf of the tree
  4. 04 climbroot =? H(…H(leaf ‖ a[0])… ‖ a[7])8 siblings carry the leaf to the root that was published once

Between 45 and 990 hashes, depending on the digest. No curve, no pairing, no trusted setup, and nothing that a larger quantum computer makes easier than Grover already does.

What this rests on

Each line is a thing the rest of this site claims, with the thing that would make it false printed next to it. Neither can be rendered without the other.

What does not exist yet

Domain
ephapax.fun, registered 2026-10-11 and serving this build
On-chain verifier
no program is deployed, so no page here says one verifies anything
The coin
none. $EPHA is what will be asked for, not what has been read
Launching
works. The launch page calls pump.fun's create_v2 and spends real SOL; what is missing above is the verifier, not the launch
X account
@Ephapax_, id 2109215853841715200, read back 2026-10-11

@Ephapax_ is ours. @Ephapax, without the underscore, is a different account with id 1372971042: a real account from long before this project, now displaying the same name. Both return 200 and both display the same name, so the id is the only thing that tells them apart and it is printed here rather than left to be noticed.

And what does, counted now

reading the store… these numbers are not rendered until they have been read, because a placeholder zero is a figure.

the rail's coin is written as a phrase rather than a symbol, because a ticker is decoded off a mint and this one has no mint. Every signature binds itself to ephapax/wots-sha256/w16/h8/v1, over a 32-byte digest walked at most 15 steps per chain.